Regin — Malware Profile
Regin is a malware platform that has targeted victims in a range of industries, including telecom, government, and financial institutions. Some Regin timestamps date back to 2003.
MITRE ATT&CK techniques (11)
- T1021.002 SMB/Windows Admin Shares
- T1036.001 Invalid Code Signature
- T1040 Network Sniffing
- T1056.001 Keylogging
- T1071.001 Web Protocols
- T1071.002 File Transfer Protocols
- T1090.002 External Proxy
- T1095 Non-Application Layer Protocol
- T1112 Modify Registry
- T1564.004 NTFS File Attributes
- T1564.005 Hidden File System